CVE-2026-8449: Linux ksmbd Remote Memory Corruption via ACL Inheritance
Published May 12, 2026
·Updated
Rejected reason: This CVE ID has been rejected or withdrawn.
Affected Software
1 affected component
Linux ksmbd
Event History
May 12, 2026
CVE Published
via MITRE·09:34 PM
Rejected
via MITRE·09:34 PM
Data Sourced
via NVD·10:16 PM
Description
May 13, 2026
Rejected
via MITRE·03:14 PM
Frequently Asked Questions
1
What is the severity of CVE-2026-8449?
CVE-2026-8449 has been classified as a high-severity vulnerability due to its potential for remote exploitation leading to memory corruption.
2
How do I fix CVE-2026-8449?
To mitigate CVE-2026-8449, users should update to the latest version of Linux ksmbd where the vulnerability has been addressed.
3
Who is affected by CVE-2026-8449?
CVE-2026-8449 affects systems running Linux ksmbd that allow remote clients to create directories with specific permissions.
4
What type of vulnerability is CVE-2026-8449?
CVE-2026-8449 is a remote memory corruption vulnerability arising from improper ACL inheritance handling.
5
Can CVE-2026-8449 lead to unauthorized access?
Yes, CVE-2026-8449 can potentially lead to unauthorized access by enabling attackers to exploit memory corruption.